nerdexam
Juniper

JN0-1103 · Question #24

You are considering replacing a traditional MPLS WAN with a SD-WAN solution. Which two statements are true in this scenario? (Choose two.)

The correct answer is B. SD-WAN can provide similar security and privacy to legacy WANs. C. Direct Internet Access can be made available in remote offices using a local breakout. B is correct because SD-WAN can replicate the security and privacy of MPLS by encrypting traffic over public internet links using IPsec tunnels, plus layering on next-gen firewall capabilities - making it functionally comparable to the inherent privacy of MPLS's label-switched…

WAN, Security, and Management Design Elements

Question

You are considering replacing a traditional MPLS WAN with a SD-WAN solution. Which two statements are true in this scenario? (Choose two.)

Options

  • ASD-WAN requires the use of specialized ASICs to route application traffic.
  • BSD-WAN can provide similar security and privacy to legacy WANs.
  • CDirect Internet Access can be made available in remote offices using a local breakout.
  • DDirect Internet Access can be made available in remote offices using a central breakout.

How the community answered

(24 responses)
  • A
    21% (5)
  • B
    71% (17)
  • D
    8% (2)

Explanation

B is correct because SD-WAN can replicate the security and privacy of MPLS by encrypting traffic over public internet links using IPsec tunnels, plus layering on next-gen firewall capabilities - making it functionally comparable to the inherent privacy of MPLS's label-switched paths.

C is correct because a core SD-WAN advantage is local internet breakout - remote branches send internet-bound traffic directly out to the internet locally, rather than backhauling everything through headquarters. This reduces latency and conserves WAN bandwidth.

A is wrong because SD-WAN is defined by running on commodity (x86) hardware using software policies - no specialized ASICs required. That's largely the point: it's cheaper and more flexible than proprietary hardware-dependent solutions.

D is wrong because central breakout is the old MPLS model (hairpinning traffic back to HQ before it reaches the internet), which SD-WAN is designed to replace. Local breakout (Choice C) is the correct SD-WAN term.

Memory tip: SD-WAN = Software (no ASICs), Direct access via Local breakout. If you see "central breakout," think "that's the legacy way" - SD-WAN breaks out locally.

Topics

#SD-WAN#MPLS migration#local breakout#Direct Internet Access

Community Discussion

No community discussion yet for this question.

Full JN0-1103 Practice